advisory-database
advisory-database copied to clipboard
[GHSA-vrwc-qjmw-5rjm] ClassLoader manipulation in Apache Struts
Updates
- Affected products
- References
Comments
Add a patch https://github.com/apache/struts/commit/74e26830d2849a84729b33497f729e0f033dc147, of which the commit message claims Adds additional pattern to prevent access to getClass method